Red Hat Bugzilla – Bug 1428487
CVE-2017-6346 kernel: net: Race condition in net/packet/af_packet.c
Last modified: 2017-04-12 12:15:11 EDT
Race condition in net/packet/af_packet.c in the Linux kerne allows local users to cause a denial of service (use-after-free) or possibly have unspecified other impact via a multithreaded application that makes PACKET_FANOUT setsockopt system calls. Upstream patch: http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=d199fab63c11998a602205f7ee7ff7c05c97164b References: http://seclists.org/oss-sec/2017/q1/526
Statement: This issue does not affect the Linux kernel packages as shipped with Red Hat Enterprise Linux 5 and 6 as the code which can trigger the flaw is not present in the products listed. This issue affects the Linux kernel packages as shipped with Red Hat Enterprise Linux 7 and MRG-2. Future Linux kernel updates for the respective releases may address this issue.